Dirty NAT tricks

Greg Hennessy Greg.Hennessy at nviz.net
Wed Feb 22 05:26:50 PST 2006


How is this a problem ? Surely the default route is through the tunnel
interface when the tunnel is up ? 

I fail to see how this 'breaks things horribly'. 

> 
> "You have a corporate LAN. You want to set up a VPN (in this case
> OpenVPN) into the LAN for your road-warriors. However, your 
> LAN is numbered with one of the very common private subnets, 
> such as 192.168/16. Your road-warriors often get addresses in 
> the same private subnet from their coffee-shops, and this 
> breaks things horribly."



More information about the freebsd-pf mailing list